A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "0.6-2ubuntu1.1+esm1",
"binary_name": "libusbredirhost-dev"
},
{
"binary_version": "0.6-2ubuntu1.1+esm1",
"binary_name": "libusbredirhost1"
},
{
"binary_version": "0.6-2ubuntu1.1+esm1",
"binary_name": "libusbredirparser-dev"
},
{
"binary_version": "0.6-2ubuntu1.1+esm1",
"binary_name": "libusbredirparser1"
},
{
"binary_version": "0.6-2ubuntu1.1+esm1",
"binary_name": "usbredirserver"
}
]
}
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1",
"binary_name": "libusbredirhost-dev"
},
{
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1",
"binary_name": "libusbredirhost1"
},
{
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1",
"binary_name": "libusbredirparser-dev"
},
{
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1",
"binary_name": "libusbredirparser1"
},
{
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1",
"binary_name": "usbredirserver"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0.7.1-1ubuntu0.18.04.1",
"binary_name": "libusbredirhost-dev"
},
{
"binary_version": "0.7.1-1ubuntu0.18.04.1",
"binary_name": "libusbredirhost1"
},
{
"binary_version": "0.7.1-1ubuntu0.18.04.1",
"binary_name": "libusbredirparser-dev"
},
{
"binary_version": "0.7.1-1ubuntu0.18.04.1",
"binary_name": "libusbredirparser1"
},
{
"binary_version": "0.7.1-1ubuntu0.18.04.1",
"binary_name": "usbredirserver"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0.8.0-1ubuntu0.1",
"binary_name": "libusbredirhost-dev"
},
{
"binary_version": "0.8.0-1ubuntu0.1",
"binary_name": "libusbredirhost1"
},
{
"binary_version": "0.8.0-1ubuntu0.1",
"binary_name": "libusbredirparser-dev"
},
{
"binary_version": "0.8.0-1ubuntu0.1",
"binary_name": "libusbredirparser1"
},
{
"binary_version": "0.8.0-1ubuntu0.1",
"binary_name": "usbredirserver"
}
]
}